2004 CVE Vulnerabilities

2,707 CVEs published in 2004.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2004-1064The safe mode checks in PHP 4.x to 4.3.9 and PHP 5.x to 5.0.2 truncate the file path before passing the data to the real...
CVE-2004-1117The init scripts in ChessBrain 20407 and earlier execute user-owned programs with root privileges, which allows local us...
CVE-2004-1120Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in Pr...
CVE-2004-1130Cross-site scripting (XSS) vulnerability in admin.asp in CMailServer 5.2 allows remote attackers to execute arbitrary we...
CVE-2004-0914Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple in...
CVE-2004-1011Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remo...
CVE-2004-1136Buffer overflow in CuteFTP Professional 6.0, and possibly other versions, allows remote FTP servers to cause a denial of...
CVE-2004-1105Nortel Networks Contivity VPN Client displays a different error message depending on whether the username is valid or in...
CVE-2004-1106Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary w...
CVE-2004-0899The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition, with DHCP logging enabled, does...
CVE-2004-1107dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on t...
CVE-2004-0900The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the l...
CVE-2004-0996main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite...
CVE-2004-0894LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly vali...
CVE-2004-1103MailPost 5.1.1sv, and possibly earlier versions, when debug mode is enabled, allows remote attackers to gain sensitive i...
CVE-2004-1108qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a tem...
CVE-2004-0993Buffer overflow in hpsockd before 0.6 allows remote attackers to cause a denial of service (application crash) or possib...
CVE-2004-0890Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reasons: This candidate is a reservation duplicat...
CVE-2004-1101mailpost.exe in MailPost 5.1.1sv, and possibly earlier versions, allows remote attackers to cause a denial of service (s...
CVE-2004-0893The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows...
CVE-2004-0901Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data len...
CVE-2004-0994Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with larg...
CVE-2004-1102MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested f...
CVE-2004-1109The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and earlier allows remote attackers to cause a denial of service (...
CVE-2004-0883Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause...

Check if your code is affected by 2004 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now